Privilege Escalation Flaw in IBM i Product Line
CVE-2026-18101

8.8HIGH

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
13 August 2026

What is CVE-2026-18101?

A vulnerability in the IBM i series (versions 7.6, 7.5, 7.4, and 7.3) could potentially allow a local attacker to escalate their privileges. This is a result of inadequate management of thread authority swaps, which may be exploited to obtain unauthorized access to system resources. IBM has issued a security advisory to address this issue and recommends applying the necessary patches to mitigate the risks associated with this vulnerability.

Affected Version(s)

i 7.6

i 7.5

i 7.4

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.